Cyber Posture

CWE · MITRE source

CWE-124Buffer Underwrite ('Buffer Underflow')

Abstraction: Base · CVEs in our corpus: 32

The product writes to a buffer using an index or pointer that references a memory location prior to the beginning of the buffer.

Last updated: 09 May 2026 03:25 UTC

NIST 800-53 r5 controls that address this weakness (0)AI

Control Title Family Why it addresses this CWE
No NIST controls proposed yet.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2015-2426 KEV9.38.80.91752015-07-20
CVE-2023-256102.99.80.15992025-03-24
CVE-2018-153612.09.80.01262019-03-05
CVE-2022-206831.88.60.00572022-04-15
CVE-2021-385751.78.10.00532021-12-01
CVE-2025-274391.78.50.00502025-03-11
CVE-2025-274401.78.50.00632025-03-11
CVE-2018-53881.66.50.04302018-05-31
CVE-2021-360641.67.80.00722021-09-01
CVE-2022-338961.67.80.00192022-10-07
CVE-2024-529901.67.80.00102024-12-10
CVE-2025-616901.67.80.00022025-10-02
CVE-2025-627861.68.10.00442025-10-29
CVE-2026-09661.68.20.00052026-03-26
CVE-2021-385781.57.40.00062022-03-03
CVE-2023-343511.57.50.00182024-02-14
CVE-2025-531011.57.40.00122025-07-14
CVE-2023-326141.47.00.00162023-09-25
CVE-2023-482301.45.90.04152023-11-21
CVE-2025-206941.36.50.00102025-07-08
CVE-2025-206951.36.50.00102025-07-08
CVE-2026-414991.36.50.00052026-04-29
CVE-2025-619151.26.00.00032025-11-29
CVE-2026-201041.26.10.00052026-03-25
CVE-2026-284191.15.30.00012026-02-27